FG-IR-25-1052: LDAP authentication bypass in Agentless VPN and FSSO
Published Feb 10, 2026
·Updated
An Authentication Bypass by Primary Weakness vulnerability [CWE-305] in FortiOS fnbamd may allow an unauthenticated attacker to bypass LDAP authentication of Agentless VPN or FSSO policy, under specific LDAP server configuration.
Affected Software
1 affected componentFixes available
Fortinet FortiOS>=7.6.0<=7.6.4
Event History
Feb 10, 2026
Advisory Published
via FortiGuard·12:00 AM
Data Sourced
via FortiGuard·12:00 AM
DescriptionSeverityWeaknessAffected Software
Jul 3, 2026
Advisory Published
via FortiGuard·10:28 PM
Frequently Asked Questions
1
What is the severity of FG-IR-25-1052?
The severity of FG-IR-25-1052 is classified as critical due to the potential for an unauthenticated attacker to bypass LDAP authentication.
2
How do I fix FG-IR-25-1052?
To fix FG-IR-25-1052, upgrade your FortiOS to version 7.6.5 or later.
3
What versions of FortiOS are affected by FG-IR-25-1052?
FortiOS versions 7.6.0 to 7.6.4 are affected by FG-IR-25-1052.
4
What type of vulnerability is FG-IR-25-1052?
FG-IR-25-1052 is an Authentication Bypass vulnerability categorized under CWE-305.
5
Can FG-IR-25-1052 be exploited remotely?
Yes, FG-IR-25-1052 can be exploited remotely if the attacker has access to the specific LDAP server configuration.